İçeriğe atla
Noroxi

Bosch kayıtları

bosch üreticisine ait 109 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
15
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

109 kayıt
  • CVE-2020-6779
    41Planlayın

    Hard-coded Credentials in the Database of Bosch FSM-2500 Server and Bosch FSM-5000 Server

    KritikCVSS 10,0İstismar yokEPSS %4

    bosch · fsm-2500 firmware26 Oca 2021

  • CVE-2020-6770
    40Planlayın

    Deserialization of Untrusted Data in Bosch BVMS Mobile Video Service

    KritikCVSS 9,8İstismar yokEPSS %4

    bosch · bosch video management system mobile video service7 Şub 2020

  • CVE-2018-19036
    40Planlayın

    An issue was discovered in several Bosch IP cameras for firmware versions 6.32 and higher.

    KritikCVSS 9,8İstismar yokEPSS %2

    bosch · common product platform 4 firmware17 Ara 2018

  • CVE-2022-32534
    40Planlayın

    OS Command Injection

    KritikCVSS 9,8İstismar yokEPSS %2

    bosch · pra-es8p2s firmware23 Haz 2022

  • CVE-2019-6957
    40Planlayın

    Buffer Overflow for Bosch Video Systems, PSIM and Access Control Systems

    KritikCVSS 9,8İstismar yokEPSS %2

    bosch · access professional edition29 May 2019

  • CVE-2018-20299
    40Planlayın

    An issue was discovered in several Bosch Smart Home cameras (360 degree indoor camera and Eyes outdoor camera) with firmware before 6.52.4.

    KritikCVSS 9,8İstismar yokEPSS %2

    bosch · 360-indoor camera firmware19 Ara 2018

  • CVE-2021-23857
    39İzleyin

    Login with hash: The login routine allows the client to log in to the system not by using the password, but by using the hash of the passwor

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · rexroth indramotion mlc l20 firmware4 Eki 2021

  • CVE-2019-11898
    39İzleyin

    Unauthorized APE administration privileges can be achieved by reverse engineering one of the APE service tools.

    KritikCVSS 9,9İstismar yokEPSS %1

    bosch · access12 Eyl 2019

  • CVE-2019-11684
    39İzleyin

    Improper Access Control in Bosch Video Recording Manager

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · video recording manager26 Şub 2021

  • CVE-2021-23853
    39İzleyin

    Improper Input Validation of HTTP Headers

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · cpp4 firmware9 Haz 2021

  • CVE-2022-32535
    39İzleyin

    Web server runs as root

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · pra-es8p2s firmware23 Haz 2022

  • CVE-2023-48266
    39İzleyin

    The vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code Exe

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · nexo-os10 Oca 2024

  • CVE-2023-48264
    39İzleyin

    The vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code Exe

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · nexo-os10 Oca 2024

  • CVE-2023-48265
    39İzleyin

    The vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code Exe

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · nexo-os10 Oca 2024

  • CVE-2023-48263
    39İzleyin

    The vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code Exe

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · nexo-os10 Oca 2024

  • CVE-2023-48262
    39İzleyin

    The vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code Exe

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · nexo-os10 Oca 2024

  • CVE-2023-48245
    39İzleyin

    The vulnerability allows an unauthenticated remote attacker to upload arbitrary files under the context of the application OS user (“root”)

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · nexo-os10 Oca 2024

  • CVE-2023-48250
    39İzleyin

    The vulnerability allows a remote attacker to authenticate to the web application with high privileges through multiple hidden hard-coded ac

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · nexo-os10 Oca 2024

  • CVE-2023-48251
    39İzleyin

    The vulnerability allows a remote attacker to authenticate to the SSH service with root privileges through a hidden hard-coded account.

    KritikCVSS 9,8İstismar yokEPSS %1

    bosch · nexo-os10 Oca 2024

  • CVE-2020-6769
    37İzleyin

    Missing Authentication for Critical Function in Bosch Video Streaming Gateway

    KritikCVSS 9,1İstismar yokEPSS %2

    bosch · video streaming gateway7 Şub 2020

  • CVE-2019-6958
    36İzleyin

    Improper Access Control for Bosch Video Systems, PSIM and Access Control Systems

    KritikCVSS 9,1İstismar yokEPSS %2

    bosch · access professional edition29 May 2019

  • CVE-2021-23847
    36İzleyin

    Unauthenticated Information Extraction Vulnerability

    KritikCVSS 9,1İstismar yokEPSS %1

    bosch · cpp6 firmware9 Haz 2021

  • CVE-2019-11897
    35İzleyin

    Server-side request forgery in the backup & restore functionality of ProSyst mBS SDK and Bosch IoT Gateway Software

    YüksekCVSS 8,6İstismar yokEPSS %2

    bosch · iot gateway software21 Ağu 2019

  • CVE-2024-25002
    35İzleyin

    Command Injection in the diagnostics interface of the Bosch Network Synchronizer allows unauthorized users full access to the device.

    YüksekCVSS 8,8İstismar yokEPSS %1

    bosch · network synchronizer enterprise25 Mar 2024

  • CVE-2023-48243
    35İzleyin

    The vulnerability allows a remote attacker to upload arbitrary files in all paths of the system under the context of the application OS user

    YüksekCVSS 8,8İstismar yokEPSS %1

    bosch · nexo-os10 Oca 2024